CVE-2025-67490
5.4
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:N
Exploitability: 1.2 / Impact: 4.2
Source: security-advisories@github.com (Secondary)
Description
The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.
Affected (3)
Products: Auth0: Nextjs Auth0
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.11.0 |
References (2)
Source: security-advisories@github.com
Patch
Source: security-advisories@github.com
Vendor Advisory
Timeline
No history available yet.